[Secure-testing-commits] r34749 - data/CVE

Henri Salo fgeek-guest at moszumanska.debian.org
Sat Jun 6 07:16:49 UTC 2015


Author: fgeek-guest
Date: 2015-06-06 07:16:49 +0000 (Sat, 06 Jun 2015)
New Revision: 34749

Modified:
   data/CVE/list
Log:
add ruby-bson DoS and possible injection issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-06-06 07:14:04 UTC (rev 34748)
+++ data/CVE/list	2015-06-06 07:16:49 UTC (rev 34749)
@@ -1,3 +1,8 @@
+CVE-2015-XXXX [ruby-bson: DoS and possible injection]
+	- ruby-bson <unfixed>
+	NOTE: http://sakurity.com/blog/2015/06/04/mongo_ruby_regexp.html
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/06/06/1
+	TODO: check
 CVE-2015-4338
 	NOT-FOR-US: WordPress plugin xclonerbackupandrestore
 CVE-2015-4337




More information about the Secure-testing-commits mailing list